Now hiring

AWS Expert Architect (Heredia, CR, 40101) @ GFT Technologies SE - Job Offerings

Heredia, CR, 40101OnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<p style="margin:0.0in 0.0in 0.0in 14.2pt;text-indent:-14.2pt;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light';text-align:center"><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#001326">Job description</span><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#5199e2">_</span></p><p style="margin:0.0in 0.0in 0.0in 14.2pt;text-align:justify;text-indent:-14.2pt;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#001326">A day in this role</span><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#5199e2">_</span></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Serve as the security architect for AWS-hosted public applications, setting standards for edge security, identity, segmentation, observability, and resilient application design.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Influence enterprise cloud strategy by balancing security, scalability, developer experience, and operational efficiency across public-facing application environments.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Collaborate with cloud architects and DevOps teams to identify and remediate cloud misconfigurations, enforce security policies, and maintain secure cloud infrastructure for hosting web applications.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Develop strategies to implement Web Application Firewalls (WAF), Cloud Native Application Protection Platforms (CNAPP) and Cloud Security Posture Management (CSPM) tools and integrate into the organization&apos;s security framework.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Evaluate emerging AWS services and security capabilities, translating them into practical design patterns and governance controls for internet-exposed platforms.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Establish application development security guidelines and best practices utilizing industry-standard security frameworks. Define, document and enforce clear guidelines for secure coding, vulnerability management, incident response, and application security.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Act as the Subject Matter Expert (SME) in application security during enterprise project development phases, providing security consulting, recommendations, and ensuring adherence to approved security requirements.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Collaborate with developers and software teams to embed security at every stage of the SDLC.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Identify, prioritize, and devise mitigation strategies for application security vulnerabilities, implementing preventative measures to avoid future incidents.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Integrate security tools, processes, and automation into the DevOps pipeline to enhance efficiency and scalability (DevSecOps).</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Develop robust security requirements for authentication and authorization, including credential storage, privilege management, and adherence to role- and attribute-based access control standards.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Regularly monitor the security community for public-facing vulnerabilities, emerging threats, and new tactics to secure data transmissions and reduce attack exposure.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Stay updated on the latest security trends, tools, and technologies.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Attend and actively participate in application projects, change management meetings, and cross-functional discussions to ensure security is integrated from the outset.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Align with architects and development teams to promote secure design and data integrity preservation across users, applications, and infrastructure.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Foster the growth of application security champions within development teams to build a culture of security awareness and accountability.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Lead and participate in security team meetings to facilitate secure design and development practices.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Develop strong relationships with stakeholders to ensure ongoing commitment to security initiatives.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Actively engage in information security projects to evaluate existing security infrastructure and proposed changes, as defined by security leadership and software architects.<br><br><br></span></li> </ul> <p style="margin:0.0in 0.0in 0.0in 14.2pt;text-indent:-14.2pt;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#001326">The expertise requested</span><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#5199e2">_</span></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">3+ years of work experience in cybersecurity, especially in a web application security engineer or security architect role</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">3+ years of work experience securing deployment and configuration of web applications in an AWS environment</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">3+ years’ experience in performing penetration testing, secure code review, static, dynamic and manual source code review</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">3+ years’ experience in identifying and remediating common web application vulnerabilities such as OWASP</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">3+ years hands-on experience with Web Application Scanning Tools</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Proficient in software development (Java, Python, C#, etc.)</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Experience with web development technologies and frameworks (REST, JSON, XML, JavaScript, React, etc.)</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Experience with securing intra-company and third-party APIs.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">DevOps background in public and private clouds.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Experience in implementing Web Application Firewalls (WAF)</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Experience with CNAPP and CSPM tools</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Solid understanding of network and web protocols.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Experience with technical documentation</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Proven excellence in communicating business risk from cybersecurity topics.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Excellent communication and collaboration skills to work effectively with cross-functional teams.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Bachelor’s degree, preferably in a technical, scientific, or analytical discipline.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Candidates must be eligible to work in the US without sponsorship.<br><br></span></li> </ul> <p style="margin:0.0in;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#001326">Desired or nice to have expertise</span><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#5199e2">_</span></p> <ul style="margin-top:0.0in;margin-bottom:0.0in"> <li style="margin:0.0in 0.0in 0.0in 0.0px;text-align:justify;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">At least 5+ years’ experience in cybersecurity preferred, including compliance and risk management with system and application security engineering.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;text-align:justify;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Experience with one or more of the following: ISO 27001, NIST, SOX, GDPR, CIS or SOC2.</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;text-align:justify;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">Cybersecurity training and certification: SANS certifications (GWEB, GSEC), CISSP, CCSP and/or CSSLP, OSCP (and related).</span></li> <li style="margin:0.0in 0.0in 0.0in 0.0px;text-align:justify;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"><span style="color:#001326">2+ years’ experience with SQL, KQL or Splunk</span></li> </ul> <p style="margin:0.0in 0.0in 0.0in 14.2pt;text-indent:0.0in;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"> </p> <p style="margin:0.0in 0.0in 0.0in 14.2pt;text-indent:0.0in;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"> </p> <p style="text-align:center;margin:0.0in 0.0in 8.0pt;line-height:115%;font-size:12.0pt;font-family:'GFT Corporate Light'"><em><span style="color:#001326">Our Core values are focus to inclusion and diversity, all qualified applicants will be considered for employment and will go thru a fair recruitment process regardless of their race, religion, gender identity, sexual orientation, national origin or disability status.</span></em></p><p style="margin:0.0in 0.0in 0.0in 14.2pt;text-indent:-14.2pt;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light';text-align:center"><span style="font-size:14.0pt;font-family:'GFT Corporate SemiBold';color:#5199e2">Your journey with us begins here!!</span></p> <p style="margin:0.0in 0.0in 0.0in 0.0px;line-height:normal;font-size:12.0pt;font-family:'GFT Corporate Light'"> </p>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores